1inch-dapp-router-v88[.]netlify[.]app
“1inch | Swap Crypto Tokens at the Best Rates in DeFi”
1inch-dapp-router-v88.netlify.app — Контент недоступний (HTTP 404). Уособлення бренду: 1inch; Тип шахрайства: Crypto Drainer. Зведення доказів: VirusTotal 3 detections (engine total unavailable) (ChainPatrol, ESET, Kaspersky); 2 external blocklist matches (MetaMask, SEAL); PhishDestroy score 66/100. Реєстратор: Netlify.
Докладний аналіз PhishDestroy AI нижче залишено англійською, щоб зберегти оригінальний криміналістичний запис.
This domain, 1inch-dapp-router-v88.netlify.app, poses a high-risk threat as a crypto drainer impersonating the legitimate 1inch decentralized exchange platform. Analysis indicates the site mimics the official 1inch interface, presenting a page titled '1inch | Swap Crypto Tokens at the Best Rates in DeFi' to deceive users into connecting wallets or approving malicious transactions. The domain is designed to drain cryptocurrency assets by exploiting trust in the 1inch brand, a tactic increasingly observed in decentralized finance (DeFi) phishing campaigns. Infrastructure analysis reveals concrete indicators of malicious intent. The domain is flagged by 3 out of 95 security vendors on VirusTotal, a relatively low but notable detection rate that suggests evasion techniques. It is registered through Netlify and resolves to the IP address 63.176.8.218, with an SSL certificate issued by DigiCert Inc. Technologies detected include Node.js, Varnish, Envoy, GitHub Pages, Express, Snowplow Analytics, and Rudderstack, which are consistent with both legitimate and malicious web applications. The combination of these tools, alongside the domain’s impersonation of 1inch, elevates its risk profile. No historical blocklist data is currently available, but the domain remains active and unmitigated. Users who have visited 1inch-dapp-router-v88.netlify.app or interacted with its content should take immediate action to secure their assets. Disconnect any wallets linked to the site and revoke all token approvals granted to unknown or suspicious contracts using a blockchain explorer or wallet management tool. Monitor transaction history for unauthorized activity and consider transferring assets to a new wallet if compromise is suspected. Report the domain to relevant security platforms and avoid interacting with any communications or links associated with it. Proactive measures, such as verifying domain authenticity via official channels, are critical to mitigating risks in DeFi environments.
Процес реагування на загрози Pipeline
Статус у публічних блоклистах
Технології · 12 identified
Node.js is an open-source, cross-platform, JavaScript runtime environment that executes JavaScript code outside a web browser.
nodejs.org 100% впевненостіEnvoy is an open-source edge and service proxy, designed for cloud-native applications.
www.envoyproxy.io 100% впевненостіExpress is a web application framework for Node.js, released as free and open-source software under the MIT License. It is designed for building web applications and APIs.
expressjs.com 100% впевненостіSnowplow is an open-source behavioral data management platform for businesses.
snowplowanalytics.com 50% confidenceRudderstack is a customer data platform (CDP) that helps you collect, clean, and control your customer data.
rudderstack.com 100% впевненостіNetlify providers hosting and server-less backend services for web applications and static websites.
www.netlify.com 100% впевненостіHTTP Strict Transport Security (HSTS) informs browsers that the site should only be accessed using HTTPS.
www.rfc-editor.org 100% впевненостіGoogle Analytics is a free web analytics service that tracks and reports website traffic.
google.com 100% впевненостіFastly is a cloud computing services provider. Fastly's cloud platform provides a content delivery network, Internet security services, load balancing, and video & streaming services.
www.fastly.com 100% впевненостіCloudflare is a web-infrastructure and website-security company, providing content-delivery-network services, DDoS mitigation, Internet security, and distributed domain-name-server services.
www.cloudflare.com 100% впевненостіАналіз VirusTotal
Докази та зовнішні звіти
Чи вплинув на вас цей сайт?
Якщо ви ввели облікові дані облікового запису, особисту чи платіжну інформацію або завантажили файл із цього домену, негайно вживіть заходів. Нижче наведено ресурси, які допоможуть вам повідомити про інцидент і захистити себе.
Зверніться до місцевих органів влади
Виберіть свою країну, щоб отримати офіційні контакти кіберзлочинців або створити проект скарги →.
Перевірити будь-який домен
Аналіз загроз за допомогою збереженого списку блокувань, WHOIS, DNS і загальнодоступних доказів сканування
Сканувати заразПовідомити про фішинг
Додавайте підозрілі домени до нашої бази даних загроз — захищайте спільноту
ПовідомитиПотокова стрічка про загрози
Останні звіти про фішинг і помічені зміни доступності
ВідстежуватиБудьте в курсі подій, дбайте про свою безпеку
Слідкуйте за актуальними загрозами або оскаржте цей запис, якщо вважаєте, що це помилкова тривога